CVE-2016-4973: GNU Libssp

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Binaries compiled against targets that use the libssp library in GCC for stack smashing protection (SSP) might allow local users to perform buffer overflow attacks by leveraging lack of the Object Size Checking feature.

Affected products

  • GNU Libssp: affected versions not specified

Published 2017-06-07. Last modified 2026-06-17.